<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: What attributes can we send from ISE to an external radius authentication servers in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/what-attributes-can-we-send-from-ise-to-an-external-radius/m-p/3602210#M510422</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It depends on the RADIUS integration method.&amp;nbsp;&amp;nbsp; The two fundamental methods is RADIUS Token and RADIUS Proxy.&amp;nbsp; With proxy we relay all attributes to external RADIUS instance.&amp;nbsp; ISE can also manipulate attributes in flight to or from external.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In RADIUS Token case, it is a basic RADIUS PAP request with username (identity) where ISE is the NAD (RADIUS client) to external RADIUS server.&amp;nbsp; In response, we accept a single authorization attribute.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Craig&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 26 Apr 2018 21:45:22 GMT</pubDate>
    <dc:creator>Craig Hyps</dc:creator>
    <dc:date>2018-04-26T21:45:22Z</dc:date>
    <item>
      <title>What attributes can we send from ISE to an external radius authentication servers</title>
      <link>https://community.cisco.com/t5/network-access-control/what-attributes-can-we-send-from-ise-to-an-external-radius/m-p/3602209#M510421</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have a customer that is integrating ISE with an external radius provider (onelogin) for authentication. This radius instance also provides risk based (adaptive) authentication, where it will challenge based off of client information (Source IP, OS, NAD, etc...). Does ISE forward over any contextual information to the external radius provider during authentication, or is this configurable? &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 Apr 2018 12:40:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/what-attributes-can-we-send-from-ise-to-an-external-radius/m-p/3602209#M510421</guid>
      <dc:creator>edmcnich</dc:creator>
      <dc:date>2018-04-26T12:40:06Z</dc:date>
    </item>
    <item>
      <title>Re: What attributes can we send from ISE to an external radius authentication servers</title>
      <link>https://community.cisco.com/t5/network-access-control/what-attributes-can-we-send-from-ise-to-an-external-radius/m-p/3602210#M510422</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It depends on the RADIUS integration method.&amp;nbsp;&amp;nbsp; The two fundamental methods is RADIUS Token and RADIUS Proxy.&amp;nbsp; With proxy we relay all attributes to external RADIUS instance.&amp;nbsp; ISE can also manipulate attributes in flight to or from external.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In RADIUS Token case, it is a basic RADIUS PAP request with username (identity) where ISE is the NAD (RADIUS client) to external RADIUS server.&amp;nbsp; In response, we accept a single authorization attribute.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Craig&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 Apr 2018 21:45:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/what-attributes-can-we-send-from-ise-to-an-external-radius/m-p/3602210#M510422</guid>
      <dc:creator>Craig Hyps</dc:creator>
      <dc:date>2018-04-26T21:45:22Z</dc:date>
    </item>
    <item>
      <title>Re: What attributes can we send from ISE to an external radius authentication servers</title>
      <link>https://community.cisco.com/t5/network-access-control/what-attributes-can-we-send-from-ise-to-an-external-radius/m-p/3602211#M510423</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Craig&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;Ed&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 Apr 2018 22:17:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/what-attributes-can-we-send-from-ise-to-an-external-radius/m-p/3602211#M510423</guid>
      <dc:creator>edmcnich</dc:creator>
      <dc:date>2018-04-26T22:17:01Z</dc:date>
    </item>
  </channel>
</rss>

